Cybersecurity Engineer

Conagra Brands

Omaha (NE)

On-site

USD 74,000 - 109,000

Full time

9 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Health insurance
401(k) match
Stock purchase plan
Tuition reimbursement
Career development
Paid time off
Parental leave
Flexible work schedules
Volunteer opportunities

Job summary

Conagra Brands is seeking an Application Security SME to design, implement, and maintain secure applications across the organization. You will embed security into the software development lifecycle, reduce risk, and advance the AppSec program through collaboration with development, platform, and cybersecurity teams.

You will lead secure coding practices, threat modeling, and vulnerability remediation across web, mobile, and API workloads, while supporting incident response and tool pilots.

Qualifications

  • Bachelor’s degree in CS/InfoSec/Software Eng or equivalent.
  • 3+ years IT/software eng experience with at least 2 years in app security.
  • Hands-on with SAST, DAST, and SCA tools.
  • Knowledge of OWASP Top 10 and ASVS.
  • Experience reviewing code in Java, C#, Python, JavaScript, or TypeScript.
  • Familiarity with Azure DevOps, GitHub Actions or Jenkins.
  • Knowledge of common vulnerabilities and remediation.
  • Experience with NIST CSF, NIST 800-53, CVSS, ISO 27001, ITIL.
  • Cross-functional collaboration.
  • Strong communication skills to explain technical topics to varied audiences.
  • Certifications such as CISSP, GWAPT, OSCP, CSSLP, CEH are a plus.
  • Experience with API security, containers/Kubernetes, IaC scanning, pentesting, bug bounty, CTF, or coordinated disclosure preferred.
  • Willingness to travel up to 10%.

Responsibilities

  • Integrate SAST/DAST/SCA tools within CI/CD pipelines.
  • Perform threat modeling and secure design reviews for new apps, features, services and APIs.
  • Triage and drive remediation of application vulnerabilities while monitoring SLAs and metrics.
  • Coordinate secure code reviews and app/API penetration testing for high-risk systems.
  • Manage open-source dependency risks and SBOM initiatives.
  • Define, promote, and support secure coding standards and developer education.
  • Partner with cloud/platform teams to secure web, mobile, API, containers, and cloud-native apps.
  • Support security incident response activities for application-layer threats and remediation.
  • Evaluate, pilot, and prove concepts for application security tools and technologies.
  • Apply AS requirements to enterprise releases while escalating risks when appropriate.
  • Support risk assessments and conformance with frameworks like OWASP ASVS and NIST.

Skills

Application security
Vulnerability management
Threat modeling
Secure coding
Cross-functional collaboration
Communication

Education

Bachelor's degree in Computer Science / Information Security / Software Engineering

Tools

SAST tools
DAST tools
SCA tools
Secrets scanning tools
Azure DevOps
GitHub Actions
Jenkins
Kubernetes
IaC scanning tools
Penetration testing tools

Job description

Reporting to the Director of Information Security, you will serve as a trusted application security subject matter expert responsible for designing, implementing, and maintaining secure applications across Conagra Brands. You will partner with development, platform, and cybersecurity teams to embed security throughout the software development lifecycle, reduce application risk, and advance the organization’s Application Security program. You will support secure application design, vulnerability management, developer enablement, incident response activities, and continuous improvement initiatives aligned with enterprise security standards and industry frameworks.

A Taste of Your Responsibilities

Integrate, operate, and optimize static application security testing, dynamic application security testing, software composition analysis, and secrets-scanning tools within continuous integration and continuous delivery pipelines. Perform application threat modeling and secure design reviews for new applications, features, services, and application programming interfaces. Triage, prioritize, track, and drive remediation of application vulnerabilities while monitoring service level agreements, risk exposure, and program metrics. Conduct or coordinate secure code reviews and application or application programming interface penetration testing for high-risk systems. Manage open-source dependency risks and support software bill of materials initiatives. Define, promote, and support secure coding standards, developer education, and the security champions program. Partner with cloud and platform teams to support web, mobile, application programming interface, container, and cloud-native application security. Contribute to security incident response activities involving application-layer threats and support root-cause remediation efforts. Support evaluations, pilots, and proofs of concept for application security tools and technologies. Apply application security requirements to enterprise initiatives and releases while escalating risks and exceptions when appropriate. Support risk assessments and control conformance activities aligned with Open Worldwide Application Security Project Application Security Verification Standard and Open Worldwide Application Security Project Software Assurance Maturity Model. Monitor emerging application security and software supply chain threats and communicate relevant findings to cybersecurity leadership. Share application security expertise across technical teams and help mature the overall Application Security program.

Ingredients Required for Your Success

Bachelor’s degree in Computer Science, Information Security, Software Engineering, or a related field, or equivalent professional experience.

3+ years of information technology or software engineering experience, including at least 2 years focused on application security.

Hands-on experience with static application security testing, dynamic application security testing, and software composition analysis tools.

Working knowledge of the Open Worldwide Application Security Project Top 10 and Application Security Verification Standard.

Experience reviewing code in one or more languages such as Java, C#, Python, JavaScript, or TypeScript.

Familiarity with continuous integration and continuous delivery platforms such as Azure DevOps, GitHub Actions, or Jenkins.

Knowledge of common application vulnerabilities and practical remediation approaches.

Experience applying cybersecurity and risk management frameworks including NIST Cybersecurity Framework, NIST 800-53, Common Vulnerability Scoring System, ISO 27001, and Information Technology Infrastructure Library.

Strong collaboration skills with cross-functional teams in a matrixed environment.

Excellent verbal and written communication skills with experience presenting technical information to both technical and non-technical audiences.

Preferred certifications include Certified Information Systems Security Professional, Global Web Application Penetration Tester, Offensive Security Certified Professional, Certified Secure Software Lifecycle Professional, Certified Ethical Hacker, or equivalent.

Experience with application programming interface security, containers, Kubernetes, infrastructure-as-code scanning, penetration testing, bug bounty programs, capture-the-flag competitions, or coordinated vulnerability disclosure is preferred.

Willingness to travel up to 10%.

Physical Requirements

This role is based on a standard corporate office environment. Occasional availability outside core business hours may be required to support critical security incidents, releases, or business priorities.

Number of Days in Office: 3 #LI-Hybrid #LI-SG1 #LI-Associate

Compensation

Compensation Pay Range:$73,600-$109,300 The annual salary listed above is the expected offering for this position. An employee’s actual annual salary will be based on but not limited to: location, relevant experience/level and skillset, while balancing internal Conagra employees’ equity. Conagra Brands will comply with applicable law regarding minimum salaries for exempt employees.

Our Benefits
  • Health: Comprehensive healthcare plans, wellness incentive program, mental wellbeing support and fitness reimbursement
  • Wealth: Great pay, bonus incentive opportunity, matching 401(k) and stock purchase plan
  • Growth: Career development opportunities, employee resource groups, on-demand learning and tuition reimbursement
  • Balance: Paid-time off, parental leave, flexible work-schedules (subject to your location and role) and volunteer opportunities
Our Company

At Conagra Brands, we have a rich heritage of making great food. We aspire to have the most impactful, energized and inclusive culture in food. As a member of our 18,000+ person team across 40+ locations, you are empowered to reach your potential, make an impact and own your career. We're in the business of building champions – within our people and our iconic brands like Birds Eye®, Slim Jim® and Reddi-Wip®. Our focus on innovation extends beyond making great food, it also reflects our commitment to embracing new solutions that positively impact our team, the communities we serve and the health of our planet. Foodies Welcome.

Conagra Brands is an equal opportunity employer and considers qualified applicants for employment without regard to sex, race, color, religion, ethnic or national origin, gender, sexual orientation, gender identity or expression, age, pregnancy, leave status, disability, veteran status, genetic information and/or any other characteristic or status protected by national, federal, state or local law. Reasonable accommodation may be made upon request.

At Conagra Brands, we have a rich heritage of making great food. We aspire to have the most impactful, energized and inclusive culture in food. As a member of our 18,000+ person team across 40+ locations, you are empowered to reach your potential, make an impact and own your career. We're in the business of building champions – within our people and our iconic brands like Birds Eye ®, Slim Jim® and Reddi-Wip®. Our focus on innovation extends beyond making great food, it also reflects our commitment to embracing new solutions that positively impact our team, the communities we serve and the health of our planet. Foodies Welcome.

Conagra Brands is an equal opportunity employer and considers qualified applicants for employment without regard to sex, race, color, religion, ethnic or national origin, gender, sexual orientation, gender identity or expression, age, pregnancy, leave status, disability, veteran status, genetic information and/or any other characteristic or status protected by national, federal, state or local law. Reasonable accommodation may be made upon request.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Security Engineer – IAM – 1022924 ConAgra Foods, Lamb Weston
Senior Information Security Engineer – IAM – 1022924 ConAgra Foods, Lamb Weston

Farmer Veteran Coalition • United States

Hybrid
USD 93,000 - 136,000
Health benefits
401(k) matching
Stock purchase plan
+6
Associate SAP Systems Analyst
Associate SAP Systems Analyst

Conagra Brands • Omaha (NE)

Hybrid
USD 59,000 - 79,000
Health benefits
Bonus opportunity
401(k) matching
+1
SAP Systems Analyst
SAP Systems Analyst

Conagra Brands • Omaha (NE)

Hybrid
USD 74,000 - 109,000
Associate Customer Logistics Analyst
Associate Customer Logistics Analyst

Conagra Brands • Omaha (NE)

Hybrid
USD 59,000 - 70,000
Health benefits
Bonus opportunity
401(k) plan
+2
Financial Analyst, Accounting
Financial Analyst, Accounting

Conagra Brands • Omaha (NE)

On-site
USD 64,000 - 95,000
Health benefits
Bonus potential
401(k) matching
+7
Associate Quality Specialist
Associate Quality Specialist

Conagra Brands • Indianapolis (IN)

On-site
USD 59,000 - 79,000
Health insurance
Wealth: Bonus opportunity
401(k) matching
+2
Financial Analyst, Procurement Finance
Financial Analyst, Procurement Finance

Conagra Brands • Omaha (NE)

On-site
USD 64,000 - 95,000
Health plans
Bonus opportunity
401(k) matching
+2
Senior Food Safety, Quality & Regulatory Affairs Specialist
Senior Food Safety, Quality & Regulatory Affairs Specialist

Conagra Brands • Chicago (IL)

On-site
USD 82,000 - 120,000
Health insurance
401(k) matching
Stock purchase plan
+4
Information Security GRC Analyst – 1022929 ConAgra Foods, Lamb Weston
Information Security GRC Analyst – 1022929 ConAgra Foods, Lamb Weston

Farmer Veteran Coalition • United States

Hybrid
USD 72,000 - 107,000
Health insurance
Bonus opportunity
Stock purchase plan
Financial Analyst, Supply Chain Finance
Financial Analyst, Supply Chain Finance

Conagra Brands • Omaha (NE)

On-site
USD 64,000 - 95,000
Health benefits
401(k) match
Stock purchase plan
+2